Dailydave mailing list archives

Re: Remote kernel bug in SCTP?


From: Nicolas RUFF <nruff () security-labs org>
Date: Sat, 14 Mar 2009 08:55:37 +0100

Did everyone else already know about this bug? So you connect to an SCTP
endpoint, then send a packet to overwrite arbitrary kernel data? That'd
be cool.

If you can read French (and I know some people in your team does ;), you
will find more information about this bug here:

http://esec.fr.sogeti.com/blog/index.php?2009/01/08/48-correction-silencieuse-d-une-vulnerabilite-dans-le-noyau-linux

Regards,
- Nicolas RUFF
_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://lists.immunitysec.com/mailman/listinfo/dailydave


Current thread: